Impact
The vulnerability is an OS command injection in the InquireTime function of DrayTek VigorAP firmware. Insufficient filtering of the time field allows the injection of arbitrary shell commands that are executed with root privileges, giving the attacker complete control over the device and potentially the entire connected network.
Affected Systems
DrayTek VigorAP 1060C, VigorAP 903, VigorAP 906, VigorAP 912C, VigorAP 918R, and VigorAP 960C are affected. Specific vulnerable firmware versions are not listed in the advisory, so all current firmware releases for these models are potentially impacted.
Risk and Exploitability
The CVSS score of 8.6 indicates a high severity flaw. The EPSS score is 3%, indicating a moderate probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is a remote attacker authenticating to the device’s web management interface and sending crafted InquireTime input. Successful exploitation would lead to arbitrary command execution with root privileges.
OpenCVE Enrichment